Unrated severityNVD Advisory· Published Feb 9, 2024· Updated Jun 3, 2025
HCL Sametime is impacted by a failure to invalidate sessions
CVE-2023-45718
Description
Sametime is impacted by a failure to invalidate sessions. The application is setting sensitive cookie values in a persistent manner in Sametime Web clients. When this happens, cookie values can remain valid even after a user has closed out their session.
Affected products
2- Range: 11.5, 11.6, 11.6 IF1, 12.0, 12.0 FP1, 12.0.1, 12.0.1 FP1
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.